Solved

UC SAN for Exchange 2010

Posted on 2011-03-02
6
698 Views
Last Modified: 2012-05-11
Greetings Exchange people!

We're setting up an Exchange 2010 environment that consist of:

cas1.domain.local
cas2.domain.local
mailbox1.domain.local
mailbox2.domain.local


SAN fields I was thinking of:

webmail.domain.com
autodiscover.domain.com
cas1.domain.local
cas2.domain.local

1. Do I need to specify the FQDN to the mailbox servers in a SAN field?
2. I install the certificate on one CAS server, and export it to the other CAS. Correct?
3. Do I have to export the sertificate and install it on the mailbox servers?
4. Do I need the NETBIOS name to the CAS servers in a SAN field? If Yes, why?
5. Did I forget anything? :)
0
Comment
Question by:snusgubben
  • 3
  • 3
6 Comments
 
LVL 49

Accepted Solution

by:
Akhater earned 500 total points
Comment Utility
1. Do I need to specify the FQDN to the mailbox servers in a SAN field?

not at all

2.. I install the certificate on one CAS server, and export it to the other CAS. Correct?
Correct just export it with private key

3. Do I have to export the sertificate and install it on the mailbox servers?
No need

4. Do I need the NETBIOS name to the CAS servers in a SAN field? If Yes, why?
Nop not needed

5. Did I forget anything? :)

Yes you need the CAS array name if both cas1 and cas2 are in the same AD site
0
 
LVL 21

Author Comment

by:snusgubben
Comment Utility
The two cas servers is in the same site and will be in an array.

If I call the CAS array for "cas.domain.local" (I assume I should use the internal domain?), do I need SAN fields for both CAS1.domain.local and CAS2.domain.local, or is it enough to use "CAS.domain.local"?

Thanks

0
 
LVL 49

Expert Comment

by:Akhater
Comment Utility
cas.domain.local is enough
0
IT, Stop Being Called Into Every Meeting

Highfive is so simple that setting up every meeting room takes just minutes and every employee will be able to start or join a call from any room with ease. Never be called into a meeting just to get it started again. This is how video conferencing should work!

 
LVL 21

Author Comment

by:snusgubben
Comment Utility
Just to be 100% sure, it will be sufficient with:

webmail.domain.com
autodiscover.domain.com
cas.domain.local

?
0
 
LVL 49

Expert Comment

by:Akhater
Comment Utility
yep perfect
0
 
LVL 21

Author Closing Comment

by:snusgubben
Comment Utility
Thanks!
0

Featured Post

Shouldn't all users have the same email signature?

You wouldn't let your users design their own business cards, would you? So, why do you let them design their own email signatures? Think of the damage they could be doing to your brand reputation! Choose the easy way to manage set up and add email signatures for all users.

Join & Write a Comment

Not sure what the best email signature size is? Are you worried about email signature image size? Follow this best practice guide.
Learn to move / copy / export exchange contacts to iPhone without using any software. Also see the issues in configuration of exchange with iPhone to migrate contacts.
In this video we show how to create an email address policy in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.:  First we need to log into the Exchange Admin Center. Navigate to the Mail Flow…
In this video we show how to create a mailbox database in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Servers >> Data…

728 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now